This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Possible to route internet traffic from BO to HO via the IPSec SD-WAN policy routing?

Hi All,

I was wondering if this is possible. Currently I have an IPSec VPN connection between my office and home network using the connection type as "tunnel interface, xfrm". The VPN works great, both office and home networks can see each other, so no problem there. So I was wondering if I can route my home (some home devices) internet traffic over the IPSec VPN so that my home devices can breakout onto the internet using the office WAN connection?

By looking at the configurations, it looks like this can be done. I have created the necessary firewall rules, NAT rules and SD-WAN policy route, and if i do a trace route to an external address i can see it is going over the VPN, however it stop after the 2nd/3rd hop which is the xfrm interface of my office firewall. I'm not sure if I am missing any other configurations or what I'm trying to do is simply not possible..... yet?

I know what I'm trying to do is very similar to a RED setup, however I want to try and avoid this :)

 

Thanks
Marc

 

 

 



This thread was automatically locked due to age.
Parents Reply Children
No Data